← Back

Wpgeodirectory

wpgeodirectory

2 CVEs • 2 products

Products (2)

Click to collapse
Toggle
Geodirectory
geodirectory

CVEs (2)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Wpgeodirectory
1Events Calendar*
Jun 17, 2026
Mar 3, 2025
N/A· v4
8.8 HIGH· v3
N/A· v2
Deserialization of Untrusted Data vulnerability in Stiofan Events Calendar for GeoDirectory events-for-geodirectory allows Object Injection.This issue affects Events Calendar for GeoDirectory: from n/a through <= 2.3.14.
1Wpgeodirectory
1Geodirectory
Jun 17, 2026
Feb 27, 2023
N/A· v4
7.2 HIGH· v3
N/A· v2
The GeoDirectory WordPress plugin before 2.2.24 does not properly sanitise and escape a parameter before using it in a SQL statement, leading to a SQL injection exploitable by high privilege users such as admin.